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TN THE CLAIMS: 

The current claims follow. For claims not marked as amended in this response, any 
difference in the claims below and the previous state of the claims is unintentional and in the nature 
of a typographical error. 

1 . (Currently Amended) A router for interconnecting external devices coupled to said 
router, said router comprising: 
a switch fabric; and 

a plurality of routing nodes coupled to said switch fabric, wherein each of said plurality of 
routing nodes comprises packet processing circuitry for transmitting data paclcoto to, and receiving 
data packets from, naid external devices and further for transmitting data paclcoto to, and r e ceiving 
data packets from, other ones of said plurality of routing nodes via said switch fabric, wher e in said 
packet processing circuitry comprise s: 

a first network processor comprising a first plurality of microengines, each of said 
first plurality of microengines for performing first security and classification functions 
associated with said data packets received from said external dev ices and transmitted to said 
switch fabric, wherein each data packet is distribut e d to a selected microengine, wherein said 
fir st n e twork proc es sor processes data packet s being transmitt e d fr o m said ext e rnal d e vi ces 
to said switch fabric -; and 

a second network processor comprising a second plurality of microengines, each of 
said second plurality of microengines for performing second security and classification 
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functions associated with said data par-Vets received from said switch fabric and transmitted 
to said external devices, wherein each data packet is distributed to a selected microengine ? 
wherein said s e cond network processor process es data paclccto being transmitted from said 
switch fabric to said external devices . 

2. (Currently Amended) The router as set forth in Claim 1 wherein said first and second 
security and classification functions comprise replacing a source address associated with header 
information of a first data packet with an address selected from a pool of router addresses associated 
with said router. 

3 . (Currently Amended) The router as set forth in Claim 1 wherein said first and second 
security and classification functions comprise filtering a first data packet based on at least one of: 1) 
a Layer 2 address associated with said first data packet; 2) a Layer 3 address associated with said first 
data packet; and 3) a traffic type associated with said first data packet. 

4. (Currently Amended) The router as set forth in Claim 1 wherein said first and second 
security and classification functions comprise filtering a first data packet based on at least one of: 1) 
a Layer 4 address associated with said first data packet; and 2) a class of service (CoS) value 
associated with said first data packet. 
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5 . (Currently Amended) The router as set forth in Claim 1 wherein said first and second 
security and classification functions comprise performing a Network Address Translation (NAT) 
function to provide subnet independence. 

6. (Original) The router as set forth in Claim 1 wherein a first one of said first plurality 
of microengines is capable of executing N threads, wherein each of said N threads performs at least 
one security and classification function. 

7. (Original) The router as set forth in Claim 6 wherein a first one of said second 
plurality of microengines is capable of executing M threads, wherein each of said M threads 
performs at least one security and classification function. 



8. (Cancelled). 



9. (Cancelled). 



L:\SAMS01\00311 



-4- 



Docket No. 2003.09.008.BN0 
Serial No. 10/826,668 
Patent 



10. 



(Currently Amended) A communication network comprising a plurality of routers that 
communicate data packets to one another and to interfacing external devices, each of said plurality of 
routers comprising: 

a switch fabric; and 

a plurality of routing nodes coupled to said switch fabric, wherein each of said plurality of 
routing nodes comprises pack e t processing circuitry for trans m itting data packets t o, nud-reeewing 
data packets from, paid e xt e rnal d e vic es and further fo r transmitting data packets to, and mrHvmg 
data packets from, other ones of said plurality of routing nodes via said switch fabric, wherein s aid 
pack et proc e ssing circuitry comprise s: 

a first network processor comprising a first plurality of microengines, each of said 
first plurality of microengines for performing first security and classification functions 
associated with saM data pa^ rene-ived from said exte rn al devi ces and transmitted to said 
switch fabric, where in each data packet is distribute d to a sel ect ed microengine, wh e r e in said 
first n e twork processor proces s es data packets being franpmitt o d from said external d e vi ces 
to said switch fabric ; and 

a second network processor comprising a second plurality of microengines, each of 
said second plurality of microengines for performing second security and classification 
functions associated with said H a t a par.kets received from said switch fabric and transmitted 
to said external devices, wherein each data packet is d i stribute d to a selected microengine, 
wherein said s e cond network proc es sor processes data packets being t r ansmitted from said 
switch fabric to said external device s. 
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1 1 . (Currently Amended) The communication network as set forth in Claim 1 0 wherein 
said first and second security and classification functions comprise replacing a source address 
associated with header information of a first data packet with an address selected from a pool of 
router addresses associated with said router. 

12. (Currently Amended) The communication network as set forth in Claim 1 0 wherein 
said first and second security and classification functions comprise filtering a first data packet based 
on at least one of: 1) a Layer 2 address associated with said first data packet; 2) a Layer 3 address 
associated with said first data packet; and 3) a traffic type associated with said first data packet. 

1 3 (Currently Amended) The communication network as set forth in Claim 1 0 wherein 
said first and second security and classification functions comprise filtering a first data packet based 
on at least one of: 1) a Layer 4 address associated with said first data packet; and 2) a class of service 
(CoS) value associated with said first data packet. 

14. (Currently Amended) The communication network as set forth in Claim 1 0 wherein 
said first and second security and classification functions comprise performing a Network Address 
Translation (NAT) function to provide subnet independence. 
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1 5 . (Original) The communication network as set forth in Claim 1 0 wherein a first one of 
said first plurality of microengines is capable of executing N threads, wherein each of said N threads 
performs at least one security and classification function. 

1 6. (Original) The communication network as set forth in Claim 1 5 wherein a first one of 
said second plurality of microengines is capable of executing M threads, wherein each of said M 
threads performs at least one security and classification function. 

17. (Cancelled). 

18. (Cancelled). 

1 9. (Currently Amended) For use in a router comprising a switch fabric and a plurality of 
routing nodes coupled to the switch fabric, each of the routing nodes for transmitting data packets to, 
and receiving datapackets from, external devices and transmitting data packets to, and receiving data 
packets from, other routing nodes via the switch fabric, a method of performing security and 
classification functions comprising the steps of: 

performing first security and classification functions in a first network processor comprising a 
first plurality of microengines, each of said first plurality of microengines capable of executing said 
first security and classification functions, wherein the first network processor processes datapackets 
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being transmitted from the external devices to the switch fabric, and wherein each data packet is 
distributed to a selected microengine ; and 

performing second security and classification functions in a second network processor 
comprising a second plurality of microengines, each of the second plurality of microengines capable 
of executing the second security and classification functions, wherein the second network processor 
processes data packets being transmitted from the switch fabric to the external devices , and wherein 
each data packet is distributed to a selected microengine . 

20. (Currently Amended) The method as set forth in Claim 19 wherein the first and 
second security and classification functions comprise replacing a source address associated with 
header information of a first data packet with an address selected from a pool of router addresses 
associated with the router. 

21. (Currently Amended) The method as set forth in Claim 19 wherein the first and 
second security and classification functions comprise filtering a first data packet based on at least one 
of: 1) a Layer 2 address associated with the first data packet; 2) a Layer 3 address associated with the 
first data packet; and 3) a traffic type associated with the first data packet. 

22. (Currently Amended) The method as set forth in Claim 19 wherein the first and 
second security and classification functions comprise filtering a first datapacket based on at least one 
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of: 1) a Layer 4 address associated with the first data packet; and 2) a class of service (CoS) value 
associated with the first data packet. 

23. (Currently Amended) The method as set forth in Claim 19 wherein the first and 
second security and classification functions comprise performing a Network Address Translation 
(NAT) function to provide subnet independence. 
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